Categories: NewsTech

Warning: Your Windows credentials on Zoom are vulnerable to attackers

As organisations around the world revert to remote working setups, video conferencing app Zoom has certainly seen a rise in popularity. But this popularity is certainly a double-edged sword: privacy issues have come under the spotlight, while the company is the subject of a class action lawsuit in the U.S. for its perceived handling of users’ data.

Now, a report from BleepingComputer has revealed a new problem for Zoom users. A security bug means that users of Zoom’s Windows client could have their Windows login credentials stolen by malicious parties, with users calling for the vulnerability to be patched ASAP.

How does it work?

While the Zoom platform is primarily used for video conferencing, users also communicate with each other via text messages. These text messages, of course, often contain URLs which are converted into hyperlinks on the chat interface so that participants in a chat can then open the links in their browser.

SOURCE: BleepingComputer

However, the issue here is that Zoom also converts Windows networking UNC paths into clickable links (UNC [Universal Naming Convention] is a path to remote servers/printers/network resources). When these links are clicked, Windows connects to the remote server—crucially, Windows will also send over login credentials while doing this.

These credentials are then easily accessible by malicious parties, with BleepingComputer saying that programs can be used to decrypt the credentials—including passwords—“quickly”. To make a bad situation worse, the vulnerability can also be used to “launch programs” whenever these links are clicked.

SOURCE: Malay Mail

How do I protect myself?

Hopefully, Zoom will issue a patch to fix the bug, although the team there certainly have their hands full. Failing that, you can also tweak your Windows settings so that your credentials are not sent when UNC links are clicked.

On Windows 10, open the Group Policy Editor, and head over to the following path: Computer Configuration > Windows Settings > Security Settings > Local Policies > Security Options > Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers, and set to Deny All.

However, the Group Policy Editor isn’t available on the Home Edition for Windows 10 by default. This means that Home users will need to install the editor before proceeding.

Or, y’know, you could always find another conferencing app to use. Zoom has come under some serious criticism of late, with issues pertaining to its handling of user data, security, and privacy matters. To find out more about Zoom’s problems, read this story.

[ SOURCE ]

Related reading

Recent Posts

Anker Soundcore AeroClip 2 with Guinness-certified speech clarity arrived in Malaysia at RM729

Anker has officially introduced its latest open-ear clip-on earbuds to the Malaysian market: the Soundcore…

22 minutes ago

Garmin Enduro 4: 1.4-inch MIP display, up to 320 hours of battery life; available on 30 October at RM3,899

Garmin Malaysia has officially announced the Enduro 4, its latest ultra-performance GPS smartwatch designed specifically…

1 hour ago

Spotify Audiobooks with over 350,000 audiobooks coming to Malaysia later this year

Good news for local bookworms: Spotify Audiobooks is finally coming to Malaysia. The feature is…

1 hour ago

Garmin Approach S72 Malaysia: 1.4-inch AMOLED display, ComfortFit band, up to 16 days of battery life for RM3,599

Garmin Malaysia has introduced its latest flagship golf smartwatch, the Garmin Approach S72, which hits…

2 hours ago

Infinix Smart 20e arrives with military-grade shock resistance and IP64 rating, priced from RM499

Infinix has officially launched the SMART 20e in Malaysia and it is their new entry-level…

3 hours ago

MSI Prestige N16 Flip A+ with NVIDIA RTX Spark N1X now available for pre-order in Malaysia from RM19,699

MSI has officially opened pre-orders in Malaysia for its latest high-end 2-in-1 convertible laptop, the…

3 hours ago

This website uses cookies.